CVE-2021-23851
Severity CVSS v4.0:
Pending analysis
Type:
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Publication date:
30/03/2022
Last modified:
08/04/2022
Description
A specially crafted TCP/IP packet may cause the camera recovery image web interface to crash. It may also cause a buffer overflow which could enable remote code execution. The recovery image can only be booted with administrative rights or with physical access to the camera and allows the upload of a new firmware in case of a damaged firmware.
Impact
Base Score 3.x
7.20
Severity 3.x
HIGH
Base Score 2.0
6.50
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:bosch:autodome_ip_4000i_firmware:cpp7.3:*:*:*:*:*:*:* | ||
| cpe:2.3:h:bosch:autodome_ip_4000i:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:bosch:autodome_ip_5000i_firmware:cpp7.3:*:*:*:*:*:*:* | ||
| cpe:2.3:h:bosch:autodome_ip_5000i:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:bosch:autodome_ip_starlight_5000i_firmware:cpp7.3:*:*:*:*:*:*:* | ||
| cpe:2.3:h:bosch:autodome_ip_starlight_5000i:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:bosch:autodome_ip_starlight_7000i_firmware:cpp7.3:*:*:*:*:*:*:* | ||
| cpe:2.3:h:bosch:autodome_ip_starlight_7000i:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:bosch:dinion_ip_3000i_firmware:cpp7.3:*:*:*:*:*:*:* | ||
| cpe:2.3:h:bosch:dinion_ip_3000i:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:bosch:dinion_ip_bullet_4000i_firmware:cpp7.3:*:*:*:*:*:*:* | ||
| cpe:2.3:h:bosch:dinion_ip_bullet_4000i:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:bosch:dinion_ip_bullet_5000_firmware:cpp7.3:*:*:*:*:*:*:* | ||
| cpe:2.3:h:bosch:dinion_ip_bullet_5000:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:bosch:dinion_ip_bullet_5000i_firmware:cpp7.3:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



